Create a user that has appropriate authority to send system-level monitoring
data to Elasticsearch. For example, you can use the built-in beats_system user or
assign the built-in beats_system role to another user. For more
information, see
Setting Up User Authentication and
Built-in Roles.

Add the xpack.monitoring settings in the Winlogbeat configuration file. If you
configured Elasticsearch output, specify the following minimal configuration:

xpack.monitoring.enabled: true

If you configured a different output, such as Logstash, you must specify additional
configuration options. For example:

To verify your monitoring configuration, point your web browser at your Kibana
host, and select Monitoring from the side navigation. Metrics reported from
Winlogbeat should be visible in the Beats section. When X-Pack security is enabled,
to view the monitoring dashboards you must log in to Kibana as a user who has the
kibana_user and monitoring_user roles.